CVE

Id
11917  
CVE No.
CVE-2005-0711  
Status
Candidate  
Description
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.  
Phase
Assigned (20050311)  
Votes
None (candidate not yet proposed)  
Comments